Technology·

Single Prompt Hijacked Entire AWS AI Agent Fleet

Zenity researchers discovered a critical vulnerability allowing a single public AI agent on Amazon's Bedrock AgentCore to compromise all agents within the same AWS account and region. The exploit leveraged unrestricted access to internal cloud credential interfaces. AWS has since resolved the issue and tightened default agent permissions to prevent recurrence.

Source: The Decoder